Unidentified ELF 004

Actor(s): APT31

Implant used by APT31 on compromised SOHO infrastructure, tries to camouflage as a tool ("unifi-video") related to Ubiquiti UniFi surveillance cameras.

2021-11-10SekoiaCyber Threat Intelligence team
Rekoobe Unidentified ELF 004 Cobalt Strike

There is no Yara-Signature yet.